CVE Vulnerabilities

CVE-2007-3777

Published: Jul 15, 2007 | Modified: Oct 15, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

avg7core.sys 7.5.0.444 in Grisoft AVG Anti-Virus 7.5.448 and Free Edition 7.5.446, provides an internal function that copies data to an arbitrary address, which allows local users to gain privileges via arbitrary address arguments to a function provided by the 0x5348E004 IOCTL for the generic DeviceIoControl handler.

Affected Software

Name Vendor Start Version End Version
Avg_antivirus Grisoft 7.5.446 (including) 7.5.446 (including)
Avg_antivirus Grisoft 7.5.448 (including) 7.5.448 (including)

References